Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\NvUpdSrv] 'Start' = '00000002'
- '<LS_APPDATA>\NVIDIA Corporation\Update\nvupd32.exe'
- '<LS_APPDATA>\NVIDIA Corporation\Update\nvupd32.exe' /svc
- <LS_APPDATA>\NVIDIA Corporation\Update\nvupd32.exe
- %TEMP%\nsb3.tmp\System.dll
- %TEMP%\nsg2.tmp
- %TEMP%\nsb3.tmp\System.dll
- 'ke######z6.pirozhkovaja.org':8000
- '1d#######m.konditerskaja.org':8000
- 'x1######8e.pirozhkovaja.org':8000
- '1d######tm.pirozhkovaja.org':8000
- '84#####xx7.stolovka.org':8000
- 'pn######zu.pirozhkovaja.org':8000
- 'x1#####48e.stolovka.org':8000
- 'xq#####rpu.stolovka.org':8000
- 'x1#######e.konditerskaja.org':8000
- DNS ASK av#####5ja.stolovka.org
- DNS ASK x1######8e.pirozhkovaja.org
- DNS ASK 1d######tm.pirozhkovaja.org
- DNS ASK ex#######y.konditerskaja.org
- DNS ASK 8e#######s.konditerskaja.org
- DNS ASK jd######0g.pirozhkovaja.org
- DNS ASK 8e#####1rs.stolovka.org
- DNS ASK x1#######e.konditerskaja.org
- DNS ASK pn######zu.pirozhkovaja.org
- DNS ASK x1#####48e.stolovka.org
- DNS ASK xq#####rpu.stolovka.org
- DNS ASK ke######z6.pirozhkovaja.org
- DNS ASK 1d#######m.konditerskaja.org
- DNS ASK 84#####xx7.stolovka.org